[Secure-testing-commits] r29161 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Sep 30 07:17:47 UTC 2014


Author: carnil
Date: 2014-09-30 07:17:47 +0000 (Tue, 30 Sep 2014)
New Revision: 29161

Modified:
   data/CVE/list
Log:
Expand note about missing bit for CVE-2013-4311

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-09-30 07:15:50 UTC (rev 29160)
+++ data/CVE/list	2014-09-30 07:17:47 UTC (rev 29161)
@@ -25748,6 +25748,7 @@
 	NOTE: since 0.9.12.3-1 in wyeezy-security (and 1.1.3~rc1-1 in unstable). But we need
 	NOTE: to wait for the pu in #726558 for policykit-1/0.105-3+deb7u1 and have a rebuild
 	NOTE: of libvirt then.
+	NOTE: Needs a build dependency on libpolkit-gobject-1-dev
 CVE-2013-4310 (Apache Struts 2.0.0 through 2.3.15.1 allows remote attackers to bypass ...)
 	- libstruts1.2-java <not-affected> (Affects Struts 2.0.0 - Struts 2.3.15.1)
 	NOTE: http://struts.apache.org/release/2.3.x/docs/s2-018.html




More information about the Secure-testing-commits mailing list